CWE-616: CWE-616
Yearly Trend
Top Affected Vendors
All CWE-616 CVEs (5)
This vulnerability allows authenticated attackers to upload malicious PHP files as attachments in InvoicePlane, which can then be executed remotely to...
Jan 15, 2026This critical vulnerability in Panalog big data analysis platform allows unauthenticated attackers to execute arbitrary code via the exportpdf.php com...
Apr 26, 2024This vulnerability in MISP (Malware Information Sharing Platform) allows attackers to upload malicious files through the logo upload functionality. It...
Mar 21, 2024This vulnerability allows attackers with physical access to Flock Safety Bravo Edge AI Compute devices to flash arbitrary firmware, dump partitions, a...
Sep 25, 2025This vulnerability allows authenticated attackers to upload arbitrary files, including PHP scripts, to WebErpMesv2 1.17. The uploaded files can be acc...
Aug 25, 2025About CWE-616 (CWE-616)
Our database tracks 5 CVEs classified as CWE-616, with 3 rated critical and 0 rated high severity. The average CVSS score for CWE-616 vulnerabilities is 8.1.
External reference: View CWE-616 on MITRE CWE →
Monitor CWE-616 Vulnerabilities
Get alerted when new CWE-616 CVEs affect your infrastructure.
Start Monitoring Free